CVE-2021-43701

Published
View on NVD ↗
CVSS v3
6.5
MEDIUM
CVSS v2
4
MEDIUM
Affected
1
PROJECT

Description

CSZ CMS 1.2.9 has a Time and Boolean-based Blind SQL Injection vulnerability in the endpoint /admin/export/getcsv/article_db, via the fieldS[] and orderby parameters.

Open Source CMS (Content Management System) with Codeigniter and Bootstrap.
GitHubGitHub
49